Esecurity: secure internet & e-cash, summer 2012

Michael Nüsken, Raoul Blankertz · 2012

(i) Read Bard (2004). (ii) Give a short overview of the described attack. 2 (iii) How does the weak variant of CBC differ from the standard one? Guess, 2 why the weak variant is used nevertheless. (iv) Which powers/sources does an attacker need? 3 (v) Describe each step of the attack along with a judgment of feasibility. 4 (vi) Quickly describe the idea behind the suggested countermeasures. Is the 3 attack still feasible in the latest version of TLS? (vii) Read up on the so called BEAST attack and summarize (see for instance +2 https://bugzilla.mozilla.org/show_bug.cgi?id=665814).

Read the paper · More papers on PaperTik